Skip to content

jet-pentest/CVE-2021-27187

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

2 Commits
 
 

Repository files navigation

CVE-2021-27187

[Suggested description]

The FX Aggregator terminal client by "Sovremennye Delovye Tekhnologii" stores authentication credentials in cleartext in login.sav when the Save Password box is checked.

[VulnerabilityType Other]

CWE-522 Insufficiently Protected Credentials

[Vendor of Product]

OOO Sovremennye Delovye Tekhnologii

[Affected Product Code Base]

Fx-agreggator terminal client - 1

[Affected Component]

affected file "login.sav"

[Impact Information Disclosure]

true

[Has vendor confirmed or acknowledged the vulnerability?]

true

[Discoverer]

Maria Kononova (Jet Infosystems, jet.su)

[Reference]

https://sdt-fx.ru/

About

No description, website, or topics provided.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published